StackRadar

CVE-2026-42499

High

Advisory

Published 7 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
55th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
3,937
of 17,792 indexed, latest versions
Container images
4,529
deployed by those charts
Fix available
1 of 2
affected packages

Quadratic string concatenation in consumePhrase in net/mail

Carried by container images the latest versions of 3,937 of 17,792 indexed charts deploy, on 4,529 images.

Affected packageAffected versionsFixed inImages
golang-1.19deb1.19.8-2no fix listed1
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+179 more1.25.104,529
OSV records
DEBIAN-CVE-2026-42499GO-2026-4977
Also known as
BIT-golang-2026-42499

Charts affected

3,937 by stars
ChartLatestAffected imagesRadar Score
ingress-nginxkomailo-helm-charts1.0.02 of 2See more

ingress-nginx komailo-helm-charts 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.11.3d56f135b6462
stdlib@go1.22.8
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.4a9f03b34a3cb
stdlib@go1.22.8
1.25.10

Open the chart page →

1,548
metallbkomailo-helm-charts1.2.43 of 4See more

metallb komailo-helm-charts 1.2.4

3 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/metallb/controller:v0.16.1f51ab515de9c
stdlib@go1.25.9
1.25.10
quay.io/metallb/frr-k8s:v0.0.251cb06fb2d553
stdlib@go1.25.8
1.25.10
quay.io/metallb/speaker:v0.16.116561e96531e
stdlib@go1.25.9
1.25.10

Open the chart page →

2,151
komiserkomiser-eks3.1.101 of 1See more

komiser komiser-eks 3.1.10

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
tailwarden/komiser:3.1.103f68c8ae7993
stdlib@go1.22.0
1.25.10

Open the chart page →

1,272
komoplanekomodorVerified publisher0.1.81 of 1See more

komoplane komodor 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
komodorio/komoplane:0.2.19678d02c3f2e
stdlib@go1.26.2
1.25.10

Open the chart page →

954
simple-oauth2-proxykostiantyn-matsebora-helm-chartsVerified publisher0.3.71 of 1See more

simple-oauth2-proxy kostiantyn-matsebora-helm-charts 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.7.09ed7eaf72050
stdlib@go1.22.8
1.25.10

Open the chart page →

927
kovi-tile38kovi-charts0.1.11 of 1See more

kovi-tile38 kovi-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
tile38/tile38:1.33.4afb7e82f9485
stdlib@go1.23.2
1.25.10

Open the chart page →

1,208
kpingkpingOfficialVerified publisher0.3.51 of 1See more

kping kping 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
kayrosuno/kping:latestf3bd44b29b0d
stdlib@go1.26.1
1.25.10

Open the chart page →

2,242
cadvisorkrakazyabraVerified publisher1.0.11 of 1See more

cadvisor krakazyabra 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
gcr.io/cadvisor/cadvisor:v0.40.0135327c978de
stdlib@go1.13.15
1.25.10

Open the chart page →

3,185
krakenkraken0.2.01 of 7See more

kraken kraken 0.2.0

1 of the 7 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/redis:5.0fc5ecd863862
stdlib@go1.16.7
1.25.10

Open the chart page →

1,731
authnkrateo0.23.01 of 1See more

authn krateo 0.23.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/krateoplatformops/authn:0.23.0791c8f9d885a
stdlib@go1.24.2
1.25.10

Open the chart page →

677
autopilotkrateo1.0.01 of 2See more

autopilot krateo 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
stdlib@go1.24.6
1.25.10

Open the chart page →

1,667
installerkrateo2.7.12 of 2See more

installer krateo 2.7.1

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
dtzar/helm-kubectl:3.14.455429449408e
stdlib@go1.21.8
1.25.10
ghcr.io/krateoplatformops/installer/installer:0.6.3a7e922ddac55
stdlib@go1.25.5
1.25.10

Open the chart page →

3,253
installer-pre-upgradekrateo2.7.11 of 1See more

installer-pre-upgrade krateo 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
dtzar/helm-kubectl:3.14.455429449408e
stdlib@go1.21.8
1.25.10

Open the chart page →

2,542
sweeperkrateo0.2.12 of 2See more

sweeper krateo 0.2.1

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
alpine/kubectl:1.36.01ee9df6316d4
stdlib@go1.26.2
1.25.10
ghcr.io/krateoplatformops/eventstack/sweeper:0.1.05d5e24119ff1
stdlib@go1.25.3
1.25.10

Open the chart page →

1,505
kubeflowkromanow94-kubeflow0.5.116 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

16 of the 30 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
kubeflow/model-registry:v0.2.95783f6db428f
stdlib@go1.21.13
1.25.10
kubeflow/training-operator:v1-04f9f13dabb76dbda29
stdlib@go1.22.7
1.25.10
kubeflowkatib/katib-controller:v0.17.072f14e03b9e1
stdlib@go1.22.5
1.25.10
kubeflowkatib/katib-db-manager:v0.17.0916a7695b0dd
stdlib@go1.22.5
1.25.10
kubeflowkatib/katib-ui:v0.17.07a41c508deb1
stdlib@go1.22.5
1.25.10
kubeflownotebookswg/kfam:v1.9.22060a2ede788
stdlib@go1.17.13
1.25.10
kubeflownotebookswg/notebook-controller:v1.9.20f14bd28fdd5
stdlib@go1.17.13
1.25.10
kubeflownotebookswg/poddefaults-webhook:v1.9.2bde88d98ad74
stdlib@go1.21.13
1.25.10
kubeflownotebookswg/profile-controller:v1.9.2f05a5538ae7e
stdlib@go1.17.13
1.25.10
kubeflownotebookswg/pvcviewer-controller:v1.9.29815e9b1728f
stdlib@go1.22.2
1.25.10
kubeflownotebookswg/tensorboard-controller:v1.9.26536a9f61193
stdlib@go1.17.13
1.25.10
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
stdlib@go1.21.7
1.25.10
gcr.io/ml-pipeline/cache-server:2.3.0293941ee4f65
stdlib@go1.21.7
1.25.10
gcr.io/ml-pipeline/persistenceagent:2.3.0109ac1b38c41
stdlib@go1.21.7
1.25.10
gcr.io/ml-pipeline/scheduledworkflow:2.3.0f7e67e0bc071
stdlib@go1.21.7
1.25.10
gcr.io/ml-pipeline/viewer-crd-controller:2.3.08cf8213d69e4
stdlib@go1.21.7
1.25.10

Open the chart page →

71,075
kron-aapm-sidecarkron-aapm-sidecar1.1.01 of 1See more

kron-aapm-sidecar kron-aapm-sidecar 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
krontechnology/aapm-sidecar-injector:1.1.0e078d54c1711
stdlib@go1.17.10
1.25.10

Open the chart page →

2,111
adventureworkskronkltdVerified publisher0.1.01 of 1See more

adventureworks kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
chriseaton/adventureworks:latest54c3384ce701
stdlib@go1.23.1
1.25.10

Open the chart page →

4,506
lndkronkltdVerified publisher0.3.93 of 4See more

lnd kronkltd 0.3.9

3 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
thesisrobot/lnd:v0.14.1-betad94c8dbf6dac
stdlib@go1.17.1
1.25.10
thesisrobot/loop:v0.11.1-beta89ae07e787ca
stdlib@go1.13.12
1.25.10
thesisrobot/pool:v0.3.3-alpha2d1c388a4bda
stdlib@go1.14.12
1.25.10

Open the chart page →

8,472
mindsdbkronkltdVerified publisher0.1.01 of 1See more

mindsdb kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
mindsdb/mindsdb:latest163011c09299
stdlib@go1.20.13
1.25.10

Open the chart page →

9,824
world-dbkronkltdVerified publisher0.1.01 of 1See more

world-db kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghusta/postgres-world-db:latest879d0919fdcc
stdlib@go1.24.6
1.25.10

Open the chart page →

1,702
casdoorkrzwiatrzyk1.0.01 of 1See more

casdoor krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
casbin/casdoor:v1.224.066f836ef778b
stdlib@go1.17.5
1.25.10

Open the chart page →

3,649
nocodbkrzwiatrzyk0.0.11 of 1See more

nocodb krzwiatrzyk 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
nocodb/nocodb:0.100.2b0b91ec2a2dd
stdlib@go1.18.2
1.25.10

Open the chart page →

2,320
pipecdkrzwiatrzyk0.39.01 of 3See more

pipecd krzwiatrzyk 0.39.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/pipe-cd/pipecd:v0.39.00fae829caf29
stdlib@go1.14.6
1.25.10

Open the chart page →

3,819
postgresql-backup-to-miniokrzwiatrzyk0.0.11 of 2See more

postgresql-backup-to-minio krzwiatrzyk 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
library/postgres:14.13162a6ead070
stdlib@go1.16.7
1.25.10

Open the chart page →

2,199
traggokrzwiatrzyk1.0.01 of 1See more

traggo krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
traggo/server:0.2.3f1ced637510e
stdlib@go1.13.1
1.25.10

Open the chart page →

1,885
ksoc-pluginsksocOfficialVerified publisher1.9.105 of 5See more

ksoc-plugins ksoc 1.9.10

5 of the 5 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
public.ecr.aws/n8h5y2v5/rad-security/rad-bootstrapper:v1.1.115ca2d500d374
stdlib@go1.23.4
1.25.10
public.ecr.aws/n8h5y2v5/rad-security/rad-guard:v1.1.17a94d2d4aae85
stdlib@go1.23.4
1.25.10
public.ecr.aws/n8h5y2v5/rad-security/rad-sbom:v1.1.34e97e0e7a2088
stdlib@go1.23.4
1.25.10
public.ecr.aws/n8h5y2v5/rad-security/rad-sync:v1.1.1514f3dfbc0225
stdlib@go1.23.4
1.25.10
public.ecr.aws/n8h5y2v5/rad-security/rad-watch:v1.1.25b9a7d6bc2a0c
stdlib@go1.23.4
1.25.10

Open the chart page →

3,207
kubeadapt-k8s-pulsekubeadaptVerified publisher1.0.21 of 1See more

kubeadapt-k8s-pulse kubeadapt 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
stdlib@go1.25.9
1.25.10

Open the chart page →

2,436
bc-depositorykubebb0.0.31 of 1See more

bc-depository kubebb 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
hyperledgerk8s/bc-saas:v0.0.1-20230524d8bc31176257
stdlib@go1.20.2
1.25.10

Open the chart page →

1,947
bc-explorerkubebb0.0.31 of 1See more

bc-explorer kubebb 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
hyperledgerk8s/bc-explorer:v202305041f1a06b61f18
stdlib@go1.20.2
1.25.10

Open the chart page →

1,947
chartmuseumkubebb3.10.21 of 1See more

chartmuseum kubebb 3.10.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.16.071d1f1c0179e
stdlib@go1.20.4
1.25.10

Open the chart page →

2,276
cluster-componentkubebb0.2.24 of 4See more

cluster-component kubebb 0.2.2

4 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
kubebb/cert-manager-cainjector:v1.8.0f83cd256229b
stdlib@go1.17.8
1.25.10
kubebb/cert-manager-controller:v1.8.020509de4b399
stdlib@go1.17.8
1.25.10
kubebb/cert-manager-webhook:v1.8.060d3cba0c267
stdlib@go1.17.8
1.25.10
kubebb/ingress-nginx-controller:v1.3.0067673df26a6
stdlib@go1.18.2
1.25.10

Open the chart page →

8,174
fabric-operatorkubebb0.1.01 of 1See more

fabric-operator kubebb 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
stdlib@go1.18.4
1.25.10

Open the chart page →

3,995
ingress-nginxkubebb4.7.02 of 2See more

ingress-nginx kubebb 4.7.0

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.8.0744ae2afd433
stdlib@go1.20.1
1.25.10
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20230407543c40fd0939
stdlib@go1.20.1
1.25.10

Open the chart page →

3,099
kubebbkubebb0.0.11 of 1See more

kubebb kubebb 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
kubebb/core:lateste366c34a9b8d
stdlib@go1.21.6
1.25.10

Open the chart page →

1,758
kubebb-corekubebb0.1.271 of 1See more

kubebb-core kubebb 0.1.27

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
kubebb/core:v0.1.62b9e7f451d6b
stdlib@go1.20.10
1.25.10

Open the chart page →

1,947
miniokubebb5.0.102 of 2See more

minio kubebb 5.0.10

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
hyperledgerk8s/minio-mc:RELEASE.2023-01-28T20-29-38Z729b3d128487
stdlib@go1.19.4
1.25.10
hyperledgerk8s/minio-minio:RELEASE.2023-02-10T18-48-39Zed0b0c56f1ea
stdlib@go1.19.4
1.25.10

Open the chart page →

7,472
tdsfkubebb5.7.01 of 3See more

tdsf kubebb 5.7.0

1 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
kubebb/mesh-operator:v5.7.0163ebbfc7a82
stdlib@go1.18.4
1.25.10

Open the chart page →

6,515
tekton-operatorkubebb0.64.02 of 2See more

tekton-operator kubebb 0.64.0

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
hyperledgerk8s/tekton-operator-webhook:v0.64.02237cb80f52b
stdlib@go1.18.7
1.25.10
hyperledgerk8s/tektoncd-operator:v0.64.0d0a3a35a138d
stdlib@go1.18.7
1.25.10

Open the chart page →

2,432
u4a-componentkubebb0.2.106 of 8See more

u4a-component kubebb 0.2.10

6 of the 8 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
kubebb/capsule-ce:v0.1.2-20221122a3dba2a95cef
stdlib@go1.18.8
1.25.10
kubebb/iam-controller:v0.2.0-202401288ffbfa2d67e9
stdlib@go1.20.7
1.25.10
kubebb/iam-provider:v0.2.0-202401280ba03fcee3a7
stdlib@go1.17.13
1.25.10
kubebb/kube-oidc-proxy-ce:v0.3.0-2022100858d5efec568b
stdlib@go1.18
1.25.10
kubebb/oidc-server:v0.2.02b5894ef1e2f
stdlib@go1.17.8
1.25.10
kubebb/resource-viewer:v0.2.065bb40b353db
stdlib@go1.18.7
1.25.10

Open the chart page →

13,835
weaviatekubebb16.3.01 of 1See more

weaviate kubebb 16.3.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
semitechnologies/weaviate:1.19.17a00d226f063
stdlib@go1.19.9
1.25.10

Open the chart page →

1,876
apecloud-mcpkubeblocksVerified publisher0.1.01 of 1See more

apecloud-mcp kubeblocks 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
apecloud/apecloud-mcp:0.1.094041b080510
stdlib@go1.23.7
1.25.10

Open the chart page →

1,108
apelcoud-mcpkubeblocksVerified publisher0.1.01 of 1See more

apelcoud-mcp kubeblocks 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
apecloud/apecloud-mcp:0.1.094041b080510
stdlib@go1.23.7
1.25.10

Open the chart page →

1,108
argo-workflowskubeblocksVerified publisher0.40.142 of 2See more

argo-workflows kubeblocks 0.40.14

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/argoproj/argocli:v3.5.591b9825f09a8
stdlib@go1.21.7
1.25.10
quay.io/argoproj/workflow-controller:v3.5.56ab0da144235
stdlib@go1.21.7
1.25.10

Open the chart page →

2,885
calicokubeblocksVerified publisher3.28.03 of 3See more

calico kubeblocks 3.28.0

3 of the 3 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
calico/cni:v3.28.0cef0c907b8f4
stdlib@go1.22.2
1.25.10
calico/kube-controllers:v3.28.08f04e4772a2b
stdlib@go1.22.3
1.25.10
calico/node:v3.28.0385bf6391fea
stdlib@go1.22.3
1.25.10

Open the chart page →

3,309
casdoor-helm-chartskubeblocksVerified publisher1.753.01 of 1See more

casdoor-helm-charts kubeblocks 1.753.0

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
casbin/casdoor:v1.753.0770ad9ec3190
stdlib@go1.20.12
1.25.10

Open the chart page →

2,306
chaos-meshkubeblocksVerified publisher2.7.24 of 4See more

chaos-mesh kubeblocks 2.7.2

4 of the 4 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-coredns:v0.2.678dc63bc5b89
stdlib@go1.19.7
1.25.10
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
stdlib@go1.16.2
1.25.10
ghcr.io/chaos-mesh/chaos-dashboard:v2.7.211cdbbc479b3
stdlib@go1.20.8
1.25.10
ghcr.io/chaos-mesh/chaos-mesh:v2.7.28bc853c7414c
stdlib@go1.20.8
1.25.10

Open the chart page →

13,601
ciliumkubeblocksVerified publisher1.15.12 of 2See more

cilium kubeblocks 1.15.1

2 of the 2 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.15.1351d6685dc6f
stdlib@go1.21.7
1.25.10
quay.io/cilium/operator-generic:v1.15.1819c7281f5a4
stdlib@go1.21.6
1.25.10

Open the chart page →

5,137
dt-platformkubeblocksVerified publisher0.1.21 of 1See more

dt-platform kubeblocks 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
apecloud/dt-platform:0.1.1d48bcbd38066
stdlib@go1.19.11
1.25.10

Open the chart page →

880
geminikubeblocksVerified publisher0.13.43 of 8See more

gemini kubeblocks 0.13.4

3 of the 8 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.25.10
prom/alertmanager:v0.28.0d5155cfac40a
stdlib@go1.23.4
1.25.10
victoriametrics/vmalert:v1.95.1a83e5db0897a
stdlib@go1.21.4
1.25.10

Open the chart page →

3,103
gemini-schedulerkubeblocksVerified publisher0.1.11 of 1See more

gemini-scheduler kubeblocks 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-42499.

Container imageDigestPackageFixed in
apecloud/gemini-scheduler:0.1.15832d1a9097a
stdlib@go1.22.7
1.25.10

Open the chart page →

1,419

Container images carrying it

4,529 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
alpine/k8s:1.30.2cd560fce90f7
stdlib@go1.22.3
1.25.10
1
alpine/k8s:1.35.5d870622d0040
stdlib@go1.26.0
1.25.10
1
alpine/k8s:1.28.13e5c0b053fed7
stdlib@go1.22.5
1.25.10
1
alpine/k8s:1.32.3eec354133193
stdlib@go1.23.6
1.25.10
1
alpine/k8s:1.28.2fc059f056ad0
stdlib@go1.20.8
1.25.10
1
alpine/kubectl:1.36.01ee9df6316d4
stdlib@go1.26.2
1.25.10
1
alpine/kubectl:1.33.32c59a3f0726c
stdlib@go1.24.4
1.25.10
1
alpine/kubectl:1.35.0862d86046bbc
stdlib@go1.25.5
1.25.10
1
alpine/kubectl:1.35.3c4a11ae9a1cb
stdlib@go1.25.7
1.25.10
1
altinity/clickhouse-operator:0.25.41d6f18dbd599
stdlib@go1.25.1
1.25.10
1
altinity/clickhouse-operator:0.23.34baec90b20cd
stdlib@go1.20.14
1.25.10
1
altinity/clickhouse-operator:0.23.774315beb57db
stdlib@go1.21.13
1.25.10
1
altinity/clickhouse-operator:0.19.07a85f522c5bc
stdlib@go1.17.13
1.25.10
1
altinity/clickhouse-operator:0.20.08f0f582d41f0
stdlib@go1.17.13
1.25.10
1
altinity/clickhouse-operator:0.16.1db7dde971407
stdlib@go1.13.15
1.25.10
1
altinity/metrics-exporter:0.20.01a46d104406d
stdlib@go1.17.13
1.25.10
1
altinity/metrics-exporter:0.23.32912a6c15b44
stdlib@go1.20.14
1.25.10
1
altinity/metrics-exporter:0.25.46ecf67edfb71
stdlib@go1.25.1
1.25.10
1
altinity/metrics-exporter:0.16.185b4fdbae053
stdlib@go1.13.15
1.25.10
1
altinity/metrics-exporter:0.23.7a4d7ff0c727e
stdlib@go1.21.13
1.25.10
1
amaanx86/oci-native-ingress-controller:masterd7206ac7a319
stdlib@go1.23.7
1.25.10
1
amazon/aws-efs-csi-driver:v0.3.0b55277652ea8
stdlib@go1.13.4
1.25.10
1
amazon/aws-fsx-csi-driver:latestc9b14856fd22
stdlib@go1.16.8
1.25.10
1
amazon/aws-otel-collector:v0.27.0d8ab0eef5074
stdlib@go1.19.6
1.25.10
1
amazon/cloudwatch-agent:1.300032.2b36173b79b02f03a
stdlib@go1.21.5
1.25.10
1
amazon/cloudwatch-agent:1.247350.0b251780e745d1783c93
stdlib@go1.15.15
1.25.10
1
ambassador/aes-authsvc:v4.0.0-preview.12a4598b03a6a
stdlib@go1.20.6
1.25.10
1
ambassador/aes-eg-ext:v4.0.0-preview.1b7eb1be3345d
stdlib@go1.20.6
1.25.10
1
ambassador/aes-wafsvc:v4.0.0-preview.15fc571509b8c
stdlib@go1.20.6
1.25.10
1
ambassador/ambassador-agent:1.0.227a1ea0d934fb
stdlib@go1.21.5
1.25.10
1
amd64/mysql:5.7e20a653e0f51
stdlib@go1.18.2
1.25.10
1
anamskenneth/recipe_frontend:2025-06-079ecf04f42cc3
stdlib@go1.20.12
1.25.10
1
anchore/anchore-engine:v0.10.0bde9eedf639d
stdlib@go1.16.3
1.25.10
1
anchore/kai:v0.5.08aad6d0912dd
stdlib@go1.19.7
1.25.10
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
stdlib@go1.18.3
1.25.10
1
andrcuns/smocker:0.18.5b4a8eb20581a
stdlib@go1.18.10
1.25.10
1
andreacioni/kube-workload-restarter:0.0.242938b310090a
stdlib@go1.20.2
1.25.10
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
stdlib@go1.18.2
1.25.10
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
stdlib@go1.18.2
1.25.10
1
anonaddy/anonaddy:0.12.3957a95565166
stdlib@go1.18.3
1.25.10
1
ansgroup/cert-manager-webhook-safedns:v1.0.1cd6b0ef2b309
stdlib@go1.13.15
1.25.10
1
ansiblesemaphore/semaphore:v2.8.5303d1f8684027
stdlib@go1.16.3
1.25.10
1
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
stdlib@go1.25.7
1.25.10
1
anujarosha/hello-go:v1.0.1ed60e46870b6
stdlib@go1.18.3
1.25.10
1
anujdatar/cups:25.07.01685df04a643b
stdlib@go1.19.8
1.25.10
1
apache/airflow:2.8.4-python3.964e58748b6b9
stdlib@go1.21.8
1.25.10
1
apache/airflow:airflow-pgbouncer-exporter-2025.03.05-0.18.0adf7260c2c5f
stdlib@go1.23.7
1.25.10
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
stdlib@go1.22.7
1.25.10
1
apache/airflow:2.8.1e5560ad0b86e
stdlib@go1.19.8
1.25.10
1
apache/apisix-dashboard:2.9.0c010ea7d1694
stdlib@go1.14.15
1.25.10
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.